SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

395,716 CVEs1,716 in CISA KEV17,392 with EPSS ≥ 10%25,049 with a public exploitUpdated 21 September 2026

25,049 results · page 60 of 501

CVESummaryPriorityPublished
CVE-2018-10507A vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow a attacker to take a series of steps to bypass or render the OfficeScan Unauthorized Change Prevention inoperable on vulnerable installations.EXPLOITMEDIUM 4.4EPSS 1.36%12 June 2018
CVE-2018-6961VMware SD-WAN Edge by VeloCloud Command Injection VulnerabilityKEVEXPLOITHIGH 8.1EPSS 86.3%11 June 2018
CVE-2018-5159An integer overflow can occur in the Skia library due to 32-bit integer use in an array without integer overflow checks, resulting in possible out-of-bounds writes.EXPLOITCRITICAL 9.8EPSS 21.0%11 June 2018
CVE-2017-7783If a long user name is used in a username/password combination in a site URL (such as " http://UserName:Password@example.com"), the resulting modal prompt will hang in a non-responsive state or crash, causing a denial of service.EXPLOITHIGH 7.5EPSS 14.1%11 June 2018
CVE-2017-5465An out-of-bounds read while processing SVG content in "ConvolvePixel".EXPLOITCRITICAL 9.1EPSS 18.5%11 June 2018
CVE-2017-5447An out-of-bounds read during the processing of glyph widths during text layout.EXPLOITCRITICAL 9.1EPSS 17.3%11 June 2018
CVE-2017-5415An attack can use a blob URL and script to spoof an arbitrary addressbar URL prefaced by "blob:" as the protocol, leading to user confusion and further spoofing attacks.EXPLOITMEDIUM 5.3EPSS 12.6%11 June 2018
CVE-2017-5404A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node outside of it.EXPLOITCRITICAL 9.8EPSS 17.3%11 June 2018
CVE-2017-5375JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks.EXPLOIT ×3CRITICAL 9.8EPSS 33.8%11 June 2018
CVE-2016-9899Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption.EXPLOITCRITICAL 9.8EPSS 21.1%11 June 2018
CVE-2016-9079Mozilla Firefox, Firefox ESR, and Thunderbird Use-After-Free VulnerabilityKEVEXPLOIT ×2HIGH 7.5EPSS 87.4%11 June 2018
CVE-2018-12111Cross-site scripting (XSS) vulnerability in the Canon PrintMe EFI webinterface allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the /wt3/mydocs.php URI.EXPLOITMEDIUM 6.1EPSS 2.47%11 June 2018
CVE-2018-12095A Reflected Cross-Site Scripting web vulnerability has been discovered in the OEcms v3.1 web-application.EXPLOITMEDIUM 5.4EPSS 5.63%11 June 2018
CVE-2018-12094Cross-site scripting (XSS) vulnerability in news.php in Dimofinf CMS Version 3.0.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter.EXPLOITMEDIUM 5.4EPSS 1.75%11 June 2018
CVE-2018-12090There is unauthenticated reflected cross-site scripting (XSS) in LAMS before 3.1 that allows a remote attacker to introduce arbitrary JavaScript via manipulation of an unsanitized GET parameter during a forgotPasswordChange.jsp?key= password change.EXPLOITMEDIUM 6.1EPSS 2.24%11 June 2018
CVE-2018-4243A buffer overflow in getvolattrlist allows attackers to execute arbitrary code in a privileged context via a crafted app.EXPLOITHIGH 7.8EPSS 18.5%8 June 2018
CVE-2018-4241A buffer overflow in mptcp_usr_connectx allows attackers to execute arbitrary code in a privileged context via a crafted app.EXPLOITHIGH 7.8EPSS 8.12%8 June 2018
CVE-2018-4240It allows remote attackers to cause a denial of service via a crafted message.EXPLOITMEDIUM 6.5EPSS 6.91%8 June 2018
CVE-2018-4237It allows attackers to gain privileges via a crafted app that leverages a logic error.EXPLOITHIGH 7.8EPSS 13.7%8 June 2018
CVE-2018-4233It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.EXPLOITHIGH 8.8EPSS 53.3%8 June 2018
CVE-2018-4230It allows attackers to execute arbitrary code in a privileged context via a crafted app that triggers a SetAppSupportBits use-after-free because of a race condition.EXPLOITHIGH 7.0EPSS 4.11%8 June 2018
CVE-2018-4222It allows remote attackers to execute arbitrary code via a crafted web site that leverages a getWasmBufferFromValue out-of-bounds read during WebAssembly compilation.EXPLOITHIGH 8.8EPSS 10.4%8 June 2018
CVE-2018-4218It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site that triggers an @generatorState use-after-free.EXPLOITHIGH 8.8EPSS 8.96%8 June 2018
CVE-2018-4206The issue involves the "Crash Reporter" component.EXPLOITHIGH 7.8EPSS 4.92%8 June 2018
CVE-2018-4200It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site that triggers a WebCore::jsElementScrollHeightGetter use-after-free.EXPLOITHIGH 8.8EPSS 8.58%8 June 2018
CVE-2018-4193It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.EXPLOITHIGH 7.8EPSS 5.62%8 June 2018
CVE-2018-4192It allows remote attackers to execute arbitrary code via a crafted web site that leverages a race condition.EXPLOITHIGH 7.5EPSS 12.3%8 June 2018
CVE-2018-11409Splunk through 7.0.1 allows information disclosure by appending __raw/services/server/info/server-info?output_mode=json to a query, as demonstrated by discovering a license key.EXPLOITMEDIUM 5.3EPSS 98.3%8 June 2018
CVE-2018-10088Buffer overflow in XiongMai uc-httpd 1.0.0 has unspecified impact and attack vectors, a different vulnerability than CVE-2017-16725.EXPLOITCRITICAL 9.8EPSS 39.7%8 June 2018
CVE-2018-12055Multiple SQL Injections exist in PHP Scripts Mall Schools Alert Management Script via crafted POST data in contact_us.php, faq.php, about.php, photo_gallery.php, privacy.php, and so on.EXPLOITCRITICAL 9.8EPSS 3.24%8 June 2018
CVE-2018-12054Arbitrary File Read exists in PHP Scripts Mall Schools Alert Management Script via the f parameter in img.php, aka absolute path traversal.EXPLOITHIGH 7.5EPSS 39.0%8 June 2018
CVE-2018-12053Arbitrary File Deletion exists in PHP Scripts Mall Schools Alert Management Script via the img parameter in delete_img.php by using directory traversal.EXPLOITHIGH 7.5EPSS 10.9%8 June 2018
CVE-2018-12052SQL Injection exists in PHP Scripts Mall Schools Alert Management Script via the q Parameter in get_sec.php.EXPLOITCRITICAL 9.8EPSS 4.64%8 June 2018
CVE-2018-10619An unquoted search path or element in RSLinx Classic Versions 3.90.01 and prior and FactoryTalk Linx Gateway Versions 3.90.00 and prior may allow an authorized, but non-privileged local user to execute arbitrary code and allow a threat actor to escalate…EXPLOITHIGH 7.8EPSS 2.76%7 June 2018
CVE-2018-0296Cisco Adaptive Security Appliance (ASA) Denial-of-Service VulnerabilityKEVEXPLOIT ×2HIGH 7.5EPSS 99.9%7 June 2018
CVE-2018-11586XML external entity (XXE) vulnerability in api/rest/status in SearchBlox 8.6.7 allows remote unauthenticated users to read arbitrary files or conduct server-side request forgery (SSRF) attacks via a crafted DTD in an XML request.EXPLOITCRITICAL 9.8EPSS 15.0%5 June 2018
CVE-2016-9488ManageEngine Applications Manager versions 12 and 13 before build 13200 suffer from remote SQL injection vulnerabilities.EXPLOITCRITICAL 9.8EPSS 4.71%5 June 2018
CVE-2018-11736An issue was discovered in Pluck before 4.7.7-dev2. /data/inc/images.php allows remote attackers to upload and execute arbitrary PHP code by using the image/jpeg content type for a .htaccess file.EXPLOITCRITICAL 9.8EPSS 8.57%5 June 2018
CVE-2018-11715The Recent Threads plugin before 1.1 for MyBB allows XSS via a thread subject.EXPLOITMEDIUM 5.4EPSS 1.68%4 June 2018
CVE-2018-11564Stored XSS in YOOtheme Pagekit 1.0.13 and earlier allows a user to upload malicious code via the picture upload feature.EXPLOITMEDIUM 4.8EPSS 3.17%2 June 2018
CVE-2018-11522Yosoro 1.0.4 has stored XSS.EXPLOITMEDIUM 6.1EPSS 4.30%2 June 2018
CVE-2018-11538servlet/UserServlet in SearchBlox 8.6.6 has CSRF via the u_name, u_passwd1, u_passwd2, role, and X-XSRF-TOKEN POST parameters because of CSRF Token Bypass.EXPLOITHIGH 8.8EPSS 12.7%1 June 2018
CVE-2018-11671There is a CSRF vulnerability that can add an admin account via index.php?m=admin&c=access&a=adduserhandle.EXPLOITHIGH 8.8EPSS 2.48%1 June 2018
CVE-2018-11670There is a CSRF vulnerability that allows attackers to execute arbitrary PHP code via the content parameter to index.php?m=admin&c=media&a=fileconnect.EXPLOITHIGH 8.8EPSS 2.48%1 June 2018
CVE-2018-11581Cross-site scripting (XSS) vulnerability on Brother HL series printers allows remote attackers to inject arbitrary web script or HTML via the url parameter to etc/loginerror.html.EXPLOITMEDIUM 4.8EPSS 1.08%1 June 2018
CVE-2018-11652CSV Injection vulnerability in Nikto 2.1.6 and earlier allows remote attackers to inject arbitrary OS commands via the Server field in an HTTP response header, which is directly injected into a CSV report.EXPLOITCRITICAL 9.8EPSS 24.4%1 June 2018
CVE-2018-11628Data input into EMS Master Calendar before 8.0.0.201805210 via URL parameters is not properly sanitized, allowing malicious attackers to send a crafted URL for XSS.EXPLOITMEDIUM 6.1EPSS 3.47%1 June 2018
CVE-2018-11646webkitFaviconDatabaseSetIconForPageURL and webkitFaviconDatabaseSetIconURLForPageURL in UIProcess/API/glib/WebKitFaviconDatabase.cpp in WebKit, as used in WebKitGTK+ through 2.21.3, mishandle an unset pageURL, leading to an application crash.EXPLOIT ×2HIGH 7.5EPSS 68.6%1 June 2018
CVE-2018-11138Quest KACE System Management Appliance Remote Command Execution VulnerabilityKEVEXPLOITCRITICAL 9.8EPSS 92.1%31 May 2018
CVE-2018-11220Bitmain Antminer D3, L3+, and S9 devices allow Remote Command Execution via the system restore function.EXPLOITHIGH 8.8EPSS 16.2%31 May 2018

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.